CVE-2014-0566

critical
Published 2014-09-17 · Modified 2026-05-06
CVSS v3
CVSS v2
10.0
VIR risk
10.0

Description

Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0565.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: psirt@adobe.com — https://helpx.adobe.com/security/products/reader/apsb15-15.html

vendor Authored 2026-05-27

Vendor advisory: psirt@adobe.com — http://helpx.adobe.com/security/products/reader/apsb14-20.html

OS impact

OSVersionStatusFixed in
macos macos-not-affected

Application impact

VendorProductVersionsFixed
adobeacrobat{"startIncluding":"10.0","endExcluding":"10.1.15"}10.1.15
adobeacrobat_reader{"startIncluding":"10.0","endExcluding":"10.1.15"}10.1.15
adobeacrobat_dc{"startIncluding":"15.006.30033","endExcluding":"15.006.30060"}15.006.30060
adobeacrobat_reader_dc{"startIncluding":"15.006.30033","endExcluding":"15.006.30060"}15.006.30060

References

CWEs

CWE-119

Verify integrity in audit chain (admin only). AS-IS.